Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
CRITICAL 9.8
CVE-2026-58185
The Apache Traffic Server intercept plugin has a use-after-free.
This issue affects Apache Traffic Server: from 8.0.0 through 8.1.9, from 9.0.0 thro…
Traffic Server
9.2.15 / 10.1.4+
HIGH 7.5
CVE-2026-58164
Apache Traffic Server has use-after-free and time-of-check/time-of-use errors in remap configuration handling.
This issue affects Apache Traffic Ser…
Traffic Server
9.2.15 / 10.1.4+
HIGH 7.3
CVE-2026-60080
Use After Free vulnerability in the Rust deserialization logic of Apache Fory. This issue affects Apache Fory from 0.13.0 through 1.3.0.
A crafted …
Fory
1.4.0+
HIGH 7.3
CVE-2026-48913
Use After Free vulnerability in Apache HTTP Server module mod_http2 when file handles are already exhausted.
This issue affects Apache HTTP Server: …
HTTP Server
2.4.68+
CRITICAL 9.8
CVE-2026-29167
Use After Free vulnerability in Apache HTTP Server with mod_ldap in per-directory configuration
This issue affects Apache HTTP Server: from 2.4.0 th…
HTTP Server
2.4.68+
HIGH 8.7
CVE-2026-35554
A race condition in the Apache Kafka Java producer client’s buffer pool management can cause messages to be silently delivered to incorrect topics.
…
Kafka
Mitigation only
HIGH 7.0
CVE-2026-25087
Use After Free vulnerability in Apache Arrow C++.
This issue affects Apache Arrow C++ from 15.0.0 through 23.0.0. It can be triggered when reading a…
Arrow
23.0.1+
HIGH 8.1
CVE-2025-48769
Use After Free vulnerability was discovered in fs/vfs/fs_rename code of the Apache NuttX RTOS, that due recursive implementation and single buffer us…
Nuttx
12.11.0+
CRITICAL 9.8
CVE-2024-23807
The Apache Xerces C++ XML parser on versions 3.0.0 before 3.2.5 contains a use-after-free error triggered during the scanning of external DTDs.
User…
Xerces C\+\+
3.2.5+
HIGH 8.1
CVE-2023-30576
Apache Guacamole 0.9.10 through 1.5.1 may continue to reference a freed RDP audio input buffer. Depending on timing, this may allow an attacker to ex…
Guacamole
1.5.2+
HIGH 7.5
CVE-2022-24070EPSS 9%
Subversion's mod_dav_svn is vulnerable to memory corruption. While looking up path-based authorization rules, mod_dav_svn servers may attempt to use …
Subversion
1.10.8 / 1.14.2+
HIGH 8.1
CVE-2018-1311EPSS 10%
The Apache Xerces-C 3.0.0 to 3.2.3 XML parser contains a use-after-free error triggered during the scanning of external DTDs. This flaw has not been …
Xerces C\+\+
3.2.5+
CRITICAL 9.1
CVE-2019-10082EPSS 17%
In Apache HTTP Server 2.4.18-2.4.39, using fuzzed network input, the http/2 session handling could be made to read memory after being freed, during c…
HTTP Server
after 17.3
MEDIUM 5.3
CVE-2019-0196EPSS 20%
A vulnerability was found in Apache HTTP Server 2.4.17 to 2.4.38. Using fuzzed network input, the http/2 request handling could be made to access fre…
HTTP Server
after 2.4.38
HIGH 7.8
CVE-2019-0211 KEVEPSS 65%
In Apache HTTP Server 2.4 releases 2.4.17 to 2.4.38, with MPM event, worker or prefork, code executing in less-privileged child processes or threads …
HTTP Server
after 2.4.38
HIGH 7.5
CVE-2017-9790
When handling a libprocess message wrapped in an HTTP request, libprocess in Apache Mesos before 1.1.3, 1.2.x before 1.2.2, 1.3.x before 1.3.1, and 1…
Mesos
after 1.1.2
HIGH 7.5
CVE-2017-9798EPSS 95%
Apache httpd allows remote attackers to read secret data from process memory if the Limit directive can be set in a user's .htaccess file, or if http…
HTTP Server
after 2.2.34
HIGH 7.5
CVE-2017-9789EPSS 10%
When under stress, closing many connections, the HTTP/2 handling code in Apache httpd 2.4.26 would sometimes access memory after it has been freed, r…
HTTP Server
Mitigation only
HIGH 9.3
CVE-2010-3451EPSS 10%
Use-after-free vulnerability in oowriter in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allows remote attackers to cause a denial of service (applica…
Openoffice
3.3.0+
HIGH 9.3
CVE-2010-3452EPSS 10%
Use-after-free vulnerability in oowriter in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allows remote attackers to cause a denial of service (applica…
Openoffice
3.3.0+